Skip to content
Security / Governance, Risk & Compliance

Web application security - best practices

Intensive hands-on training dedicated to securing web applications against modern threats. The program includes a systematic approach to identifying, analyzing and neutralizing vulnerabilities in web applications. Participants work with real examples of vulnerabilities, learning how to detect and eliminate them. The class is conducted in a workshop format, where theory is immediately verified through practical exercises in a controlled test environment. The training places special emphasis on understanding attack mechanisms and implementing effective security measures.

Issues

  • Threat modeling

  • Authentication mechanisms

  • Access control

  • Data encryption

  • Session security

  • Data validation

  • Error handling

  • Security audit

  • Penetration tests

  • Security monitoring

  • Vulnerability management

  • Responding to incidents

Benefits

  • The participant will gain the ability to identify and assess security threats in web applications
  • Will learn to design and implement effective security mechanisms
  • Will be able to detect and eliminate common vulnerabilities in application code
  • Will learn secure programming techniques and best practices for application security
  • Will develop the ability to analyze code for potential security vulnerabilities
  • Will gain knowledge of application security testing methods
  • Will learn how to respond to security incidents and implement countermeasures

Who is this training for?

Web application developers
Application security engineers
Web solution architects
Security testers
DevSecOps Engineers
Web application administrators
Software quality specialists

Prerequisites

  • Experience in programming web applications
  • Knowledge of HTTP protocol and web architecture
  • Basic knowledge of application security
  • Understand the basics of cryptography

Training program

01

Hazard model and risk analysis

  • OWASP Top 10 and most common vulnerabilities
02

Security architecture

  • Principles of safe design
  • Security implementation
  • Authentication and authorization
03

Session management

  • Validation of input data
04

Secure data storage

  • Protection against attacks
  • Cross-Site Scripting (XSS).
  • SQL Injection and NoSQL Injection
  • Cross-Site Request Forgery (CSRF).
  • Attacks on authentication mechanisms
  • Monitoring and response
05

Security event logging

  • Intrusion detection systems
06

Incident handling

  • Penetration tests

Delivery Methods

Online

  • Convenience of participating from anywhere
  • Interactive live sessions with trainer
  • Materials available for 30 days
  • No travel costs

On-site

  • Direct contact with trainer and group
  • Intensive hands-on workshops
  • Networking with other participants
  • Full focus on learning

Your Learning Path

Web application security - best practicesCurrent training
2
Web application securityRelated training

Frequently asked questions

What are the prerequisites for this training?

For Web application security - best practices we recommend: Experience in programming web applications; Knowledge of HTTP protocol and web architecture; Basic knowledge of application security.

What is the format and duration of this training?

The training lasts 2 days and is available in online and on-site format. Sessions run from 9:00 AM to 4:00 PM. We can also customize the schedule to fit your team's needs.

Who is this training designed for?

This training is designed for: Web application developers; Application security engineers; Web solution architects.

Patrycja Petkowska
Patrycja Petkowska Opiekun szkolenia

Request a quote

Funding Options

Check funding options for your company

Up to 80%

Development Services Database

Up to 80% funding for SMEs from EU funds

Check availability
Up to 100%

National Training Fund

Up to 100% funding for employers

Learn more

Trusted by

We train teams at Poland's largest companies

ING Bank - EITT client
mBank - EITT client
PKO Bank Polski - EITT client
PZU - EITT client
Allianz - EITT client
T-Mobile - EITT client
KGHM - EITT client
PGE - EITT client
IKEA - EITT client
InPost - EITT client
Leroy Merlin - EITT client
ZUS - EITT client

Interested in this training?

Contact us - we'll prepare an offer tailored to your organization's needs.

500+ experts
2500+ trainings available
ISO 9001 quality certified
Request Training
Call us +48 22 487 84 90